SYN CookieÔÀí¼°ÆäÔÚLinuxÄÚºËÖеÄʵÏÖ
¸ÅÊö
ÔÚĿǰÒÔIPv4Ϊ֧³ÅµÄÍøÂçÐÒéÉϴµÄÍøÂç»·¾³ÖУ¬SYN FloodÊÇÒ»Öַdz£Î£ÏÕ¶ø³£¼ûµÄDoS¹¥»÷·½Ê½¡£µ½Ä¿Ç°ÎªÖ¹£¬Äܹ»ÓÐЧ·À·¶SYN Flood¹¥»÷µÄÊֶβ¢²»¶à£¬¶øSYN Cookie¾ÍÊÇÆäÖÐ×îÖøÃûµÄÒ»ÖÖ¡£SYN CookieÔÀíÓÉD. J. BernstainºÍ Eric Schenk·¢Ã÷¡£Ôںܶà²Ù×÷ϵͳÉ϶¼Óи÷ÖÖ¸÷ÑùµÄʵÏÖ¡£ÆäÖаüÀ¨Linux¡£±¾Îľͷֱð½éÉÜÒ»ÏÂSYN Flood¹¥»÷ºÍSYN CookieµÄÔÀí£¬¸üÖØÒªµÄÊǽéÉÜLinuxÄÚºËÖÐʵÏÖSYN CookieµÄ·½Ê½¡£×îºó£¬±¾Îĸø³öÒ»ÖÖÔöǿĿǰLinuxÖÐSYN Cookie¹¦ÄܵÄÏë·¨¡£
Ò» SYN Flood¹¥»÷
SYN Flood¹¥»÷ÊÇÒ»ÖÖµäÐ͵ľܾø·þÎñÐÍ£¨Denial of Service£©¹¥»÷¡£Ëùν¾Ü¾ø·þÎñÐ͹¥»÷¾ÍÊÇͨ¹ý½øÐй¥»÷£¬Ê¹Êܺ¦Ö÷»ú»òÍøÂç²»Äܹ»Á¼ºÃµÄÌṩ·þÎñ£¬´Ó¶ø¼ä½Ó´ïµ½¹¥»÷µÄÄ¿µÄ¡£
SYN Flood¹¥»÷ÀûÓõÄÊÇIPv4ÖÐTCPÐÒéµÄÈý´ÎÎÕÊÖ£¨Three-Way Handshake£©¹ý³Ì½øÐеĹ¥»÷¡£´ó¼ÒÖªµÀÐÒ鹿¶¨£¬Èç¹ûÒ»¶ËÏëÏòÁíÒ»¶Ë·¢ÆðTCPÁ¬½Ó£¬ËüÐèÒªÊ×ÏÈ·¢ËÍTCP SYN °üµ½¶Ô·½£¬¶Ô·½ÊÕµ½ºó·¢ËÍÒ»¸öTCP SYN+ACK°ü»ØÀ´£¬·¢Æð·½ÔÙ·¢ËÍTCP ACK°ü»ØÈ¥£¬ÕâÑùÈý´ÎÎÕÊ־ͽáÊøÁË¡£ÎÒÃǰÑTCPÁ¬½ÓµÄ·¢Æð·½½Ð×÷"TCP¿Í»§»ú£¨TCP Client£©"£¬TCPÁ¬½ÓµÄ½ÓÊÕ·½½Ð×÷"TCP·þÎñÆ÷£¨TCP Server£©"¡£ÖµµÃ×¢ÒâµÄÊÇÔÚTCP·þÎñÆ÷ÊÕµ½TCP SYN request°üʱ£¬ÔÚ·¢ËÍTCP SYN+ACK°ü»ØTCP¿Í»§»úǰ£¬TCP·þÎñÆ÷ÒªÏÈ·ÖÅäºÃÒ»¸öÊý¾ÝÇø×¨ÃÅ·þÎñÓÚÕâ¸ö¼´½«ÐγɵÄTCPÁ¬½Ó¡£Ò»°ã°ÑÊÕµ½SYN°ü¶ø»¹Î´ÊÕµ½ACK°üʱµÄÁ¬½Ó״̬³ÉΪ°ë¿ªÁ¬½Ó£¨Half-open Connection£©¡£
ÔÚ×î³£¼ûµÄSYN Flood¹¥»÷ÖУ¬¹¥»÷ÕßÔÚ¶Ìʱ¼äÄÚ·¢ËÍ´óÁ¿µÄTCP SYN°ü¸øÊܺ¦Õߣ¬Õâʱ¹¥»÷ÕßÊÇTCP¿Í»§»ú£¬Êܺ¦ÕßÊÇTCP·þÎñÆ÷¡£¸ù¾ÝÉÏÃæµÄÃèÊö£¬Êܺ¦Õß»áΪÿ¸öTCP SYN°ü·ÖÅäÒ»¸öÌØ¶¨µÄÊý¾ÝÇø£¬Ö»ÒªÕâЩSYN°ü¾ßÓв»Í¬µÄÔ´µØÖ·£¨ÕâÒ»µã¶ÔÓÚ¹¥»÷ÕßÀ´ËµÊǺÜÈÝÒ×αÔìµÄ£©¡£Õ⽫¸øTCP·þÎñÆ÷ϵͳÔì³ÉºÜ´óµÄϵͳ¸ºµ££¬×îÖÕµ¼ÖÂϵͳ²»ÄÜÕý³£¹¤×÷¡£
¶þ SYN CookieÔÀí
SYN CookieÊǶÔTCP·þÎñÆ÷¶ËµÄÈý´ÎÎÕÊÖÐÒé×÷һЩÐ޸ģ¬×¨ÃÅÓÃÀ´·À·¶SYN Flood¹¥»÷µÄÒ»ÖÖÊֶΡ£ËüµÄÔÀíÊÇ£¬ÔÚTCP·þÎñÆ÷ÊÕµ½TCP SYN°ü²¢·µ»ØTCP SYN+ACK°üʱ£¬²»·ÖÅäÒ»¸öרÃŵÄÊý¾ÝÇø£¬¶øÊǸù¾ÝÕâ¸öSYN°ü¼ÆËã³öÒ»¸öcookieÖµ¡£ÔÚÊÕµ½TCP ACK°üʱ£¬TCP·þÎñÆ÷ÔÚ¸ù¾ÝÄǸöcookieÖµ¼ì²éÕâ¸öTCP ACK°üµÄºÏ·¨ÐÔ¡£Èç¹ûºÏ·¨£¬ÔÙ·ÖÅäרÃŵÄÊý¾ÝÇø½øÐд¦ÀíδÀ´µÄTCPÁ¬½Ó¡£
´ÓÉÏÃæµÄ½éÉÜ¿ÉÒÔ¿´³ö£¬SYN CookieµÄÔÀí±È½Ï¼òµ¥¡£µ½Êµ¼ÊµÄÓ¦ÓÃÖУ¬ËüÓжàÖÖ²»Í¬µÄʵÏÖ·½Ê½¡£
Èý LinuxÄÚºËÖеÄSYN CookieʵÏÖ
LinuxÄÚºËÖжÔSYN Flo
Ïà¹ØÎĵµ£º
£¨L2CAPÐÒé¼ò½é£¬L2CAPÔÚBlueZÖеÄʵÏÖÒÔ¼°L2CAP±à³Ì½Ó¿Ú£©
Ò»£ºL2CAPÐÒé¼ò½é£º
Logical Link Control and Adaptation Protocol(L2CAP)
Âß¼Á¬½Ó¿ØÖƺÍÊÊÅäÐÒé (L2CAP) ΪÉϲãÐÒéÌá¹©ÃæÏòÁ¬½ÓºÍÎÞÁ¬½ÓµÄÊý¾Ý·þÎñ£¬²¢Ìṩ¶àÐÒ鹦ÄܺͷָîÖØ×é²Ù×÷¡£L2CAP ³äÐíÉϲãÐÒéºÍÓ¦ÓÃÈí¼þ´«ÊäºÍ½ÓÊÕ×î´ó³¤¶ÈΪ 64K µÄ L2CAP Ê ......
ÀýÒ»£º·¢ËÍSignaling Packet£º
Signaling CommandÊÇ2¸öBluetoothʵÌåÖ®¼äµÄL2CAP²ãÃüÁî´«Êä¡£ËùÒÔµÃSignaling CommandʹÓÃCID 0x0001.
¶à¸öCommand¿ÉÒÔÔÚÒ»¸öC-frame£¨control frame£©Öз¢ËÍ¡£
Èç¹ûÒªÖ±½Ó·¢ËÍSignaling Command.ÐèÒª½¨Á¢SOCK_RAWÀàÐ͵ÄL2CAPÁ¬½ÓSocket¡£ÕâÑù²ÅÓлú»á×Ô¼ºÌî³äCommand Code£¬Identi ......
1¡¢/etc/modules.confÎļþ£º
ÔÚDebian/UbuntuÅÉϵÖÐÃûΪ/etc/modules£¬ÔÚÓÐЩLinuxϵͳÖÐÒ²ÓÃÃû/etc/conf.modules¡£¸ÃÅäÖÃÎļþ¶¨ÒåÁ˸÷ÖÖÐèÒªÔÚÆô¶¯Ê±¼ÓÔØµÄÄ£¿éµÄ²ÎÊýÐÅÏ¢¡£ÕâÀïÖ÷Òª×ÅÖØÌÖÂÛ¹ØÓÚÍø¿¨µÄÅäÖá£ÔÚʹÓÃLinux×öÍø¹ØµÄÇé¿öÏ£¬Linux·þÎñÆ÷ÖÁÉÙÐèÒªÅäÖÃÁ½¿éÍø¿¨¡£ÎªÁ˼õÉÙÆô¶¯Ê±¿ÉÄܳö ......
Ò»¡¢×ܽáһϣº
1.linuxÏÂÆô¶¯mysqlµÄÃüÁ
mysqladmin start
/ect/init.d/mysql start (Ç°ÃæÎªmysqlµÄ°²×°Â·¾¶)
2.linuxÏÂÖØÆômysqlµÄÃüÁ
mysqladmin restart
/ect/init.d/mysql restart (Ç°ÃæÎªmysqlµÄ°²×°Â·¾¶)
3.linuxϹرÕmysqlµÄÃüÁ
mysqladmin shut ......
ת×Ôhttp://blog.csdn.net/windone0109/archive/2009/04/01/4040772.aspx
£¨±¾ÎÄÀý×Ó»ùÓÚFreeBSD/LinuxʵÏÖ£¬windows»·¾³Çë×Ô¼º×ö³öÏàÓ¦Ð޸ģ©
ÅäÖùÜÀíµÄÒ»¸öÖØÒªÊ¹ÃüÊDZ£Ö¤Êý¾ÝµÄ°²È«ÐÔ£¬·ÀÖ¹·þÎñÆ÷Ó¦Ó²ÅÌË𻵡¢Îó²Ù×÷Ôì³ÉÊý¾ÝÎÞ·¨»Ö¸´µÄÔÖÄÑÐÔºó¹û¡£Òò´ËÖÆ¶¨Ò»¸öÍêÕûµÄ±¸·Ý²ßÂԷdz£ÖØÒª¡£
Ò»°ã ......